Test-MtAdUserSpnTotalCount
SYNOPSIS
Counts the total number of SPNs configured on user accounts.
SYNTAX
Test-MtAdUserSpnTotalCount [-ProgressAction <ActionPreference>] [<CommonParameters>]
DESCRIPTION
This test retrieves all Service Principal Names (SPNs) configured on user objects. User accounts with SPNs are particularly sensitive as they can be targets for Kerberoasting attacks. This test provides visibility into the scope of user SPNs in the environment.
EXAMPLES
EXAMPLE 1
Test-MtAdUserSpnTotalCount
Returns $true if SPN data is accessible, $false otherwise. The test result includes the total count of user SPNs.
PARAMETERS
-ProgressAction
Determines how PowerShell responds to progress updates generated by a script, cmdlet, or provider, such as the progress bars generated by Write-Progress.
Type: ActionPreference
Parameter Sets: (All)
Aliases: proga
Required: False
Position: Named
Default value: None
Accept pipeline input: False
Accept wildcard characters: False
CommonParameters
This cmdlet supports the common parameters: -Debug, -ErrorAction, -ErrorVariable, -InformationAction, -InformationVariable, -OutVariable, -OutBuffer, -PipelineVariable, -Verbose, -WarningAction, and -WarningVariable. For more information, see about_CommonParameters.
INPUTS
OUTPUTS
System.Boolean
NOTES
RELATED LINKS
https://maester.dev/docs/commands/Test-MtAdUserSpnTotalCount